Implementing Access Control Flashcards

1
Q

You are configuring Windows Dynamic Access Control. You have created a user claim, enabled the “Department” resource property, and you have created an Access Control Rule. What must you also do?

  • Add the central access rule to the server audit list
  • Add the central access rule to a Central Access Policy (CAS), deploy the CAS using Group Policy
  • Install Routing and Remote Access on file servers
  • Install File Server Resource Manager on file servers
A
  • Add the central access rule to a Central Access Policy (CAS), deploy the CAS using Group Policy
  • Install File Server Resource Manager on file servers
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which Linux command can be used to manage file system permissions?

  • grep
  • ps
  • sudo
  • chmod
A

chmod

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which security principal strives to grant only those permissions required to perform a specific task?
Instruction: Choose the option that best answers the question.
Answer Choices

Multifactor authentication

Defence in-depth

Principal of least privilege

Single sign-on

A

Principal of least privilege

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

You have used the Delegation of Control wizard to assign Active Directory management permissions to a user named LBrenner to an OU named East. You would like to modify the management permissions for LBrenner. What should you do?
Instruction: Choose all options that best answer the question.
Answer Choices

In Active Directory Users and Computers, remove the Users container

Open the properties of the Active Directory domain and click the Security tab

In Active Directory Users and Computers, enable the Advanced view

Open the properties of the East OU and click the Security tab

A
  • In Active Directory Users and Computers, enable the Advanced view
  • Open the properties of the East OU and click the Security tab
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You are using the Azure portal to configure RBAC. You have opened the properties of a resource group. What should you click on to configure RBAC?
Instruction: Choose the option that best answers the question.
Answer Choices

Properties

Security

Access Control (IAM)

Monitoring

A

Access Control (IAM)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which access control model uses the operating system to determine resource access?
Instruction: Choose the option that best answers the question.
Answer Choices

DAC

MAC

RBAC

ABAC

A

MAC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

You are attempting to create a dynamic user group in Microsoft Azure Active Directory, but the group type drop-down list contains “Assigned” and is greyed out. What is the problem?
Instruction: Choose the option that best answers the question.
Answer Choices

Your account does not have sufficient permissions

You must enable at least an Azure AD Premium P1 license

You are using the default Azure AD tenant; create a new tenant

The group must first have existing members

A

You must enable at least an Azure AD Premium P1 license

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which Group Policy setting should be enabled to audit Windows file system access?
Instruction: Choose the option that best answers the question.
Answer Choices

Audit object access

Audit logon access

Audit Active Directory events

Audit logoff access

A

Audit object access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You need to set NTFS file system permissions on a Windows host. You have opened the properties of a file system folder. What should you click next?
Instruction: Choose the option that best answers the question.
Answer Choices

Classification

Sharing

Security

Auditing

A

Security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly